When processing ClientHello.cipher_suites, don't ignore cipher suites

listed after TLS_FALLBACK_SCSV.

RT: 3575
Reviewed-by: Emilia Kasper <emilia@openssl.org>
This commit is contained in:
Bodo Moeller 2014-10-21 22:32:09 +02:00
parent b6ece4c1fc
commit d60de314f4

View File

@ -1593,6 +1593,7 @@ STACK_OF(SSL_CIPHER) *ssl_bytes_to_cipher_list(SSL *s,unsigned char *p,int num,
ssl3_send_alert(s,SSL3_AL_FATAL,SSL_AD_INAPPROPRIATE_FALLBACK);
goto err;
}
p += n;
continue;
}